
106
•
URL: http://192.168.0.111/portal.
[SwitchA] portal server newpt ip 192.168.0.111 key portal port 50100 url
http://192.168.0.111/portal
Enable portal authentication on the interface connecting Switch B.
[SwitchA] interface vlan-interface 4
[SwitchA–Vlan-interface4] portal server newpt method layer3
[SwitchA–Vlan-interface4] quit
Configuring Layer 3 portal authentication with extended
functions
Network requirements
•
Switch A is configured for Layer 3 extended portal authentication. When users have passed
identity authentication but have not passed security checking, they can access only subnet
192.168.0.0/24. After passing security checking, they can access Internet resources.
•
The host accesses Switch A through Switch B.
•
A RADIUS server serves as the authentication/accounting server
Figure 32
Configure Layer 3 portal authentication with extended functions
Configuration procedure
•
You need to configure IP addresses for the host, switches, and servers as shown in Figure 32 and ensure
that they are reachable to each other.
•
Perform configurations on the RADIUS server to ensure that the user authentication and accounting
functions can work normally.
Configure Switch A:
1.
Configure a RADIUS scheme